CVE-2026-8037
EUVD-2026-3426004.06.2026, 14:16
OS Command Injection Remote Code Execution Vulnerability in API in Progress ADC Products allows an un-authenticated attacker to execute arbitrary commands on the LoadMaster appliance by exploiting unsanitized input in multiple command endpoints
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| progress | connection_manager_for_objectscale | 𝑥 < 7.2.63.2 |
| progress | ecs_connection_manager | 𝑥 < 7.2.63.2 |
| progress | loadmaster | 𝑥 < 7.2.54.18 |
| progress | loadmaster | 7.2.55.0 ≤ 𝑥 < 7.2.63.2 |
𝑥
= Vulnerable software versions